ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login
    1. Topics
    2. 1337
    3. Topics
    1
    • Profile
    • Following 0
    • Followers 0
    • Topics 273
    • Posts 3,519
    • Groups 0

    Topics

    • 1

      What's the status on DMARC?

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion dmarc dns email delivery
      24
      0 Votes
      24 Posts
      3k Views
      dbeatoD

      @scottalanmiller said in What's the status on DMARC?:

      @JaredBusch said in What's the status on DMARC?:

      That image is a stander O365 box that only takes a few clicks to setup. How have you not seen that?

      Very few customers using O365 and none using that feature, I'd imagine. How does it display to people not on O365?

      We see something else from all kinds of users all different systems all over.

      A lot of SPam Filtering systems do have that option as well. A lot of medical and financial businesses enable this.

    • 1

      Private DNS architecture?

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion dns
      10
      0 Votes
      10 Posts
      1k Views
      1

      @Grey said in Private DNS architecture?:

      @Pete-S said in Private DNS architecture?:

      @Grey said in Private DNS architecture?:

      This all sounds very complicated. Why not use the DNS and DHCP at your datacenter and turn off all the others, and then give the routers an ip helper address config? Does your network hardware not support that?

      @Grey It may very well be too complicated. At the same time it has to be fast, robust and the parts have to be able to work independently if a VPN link goes down.

      Ok, cut the line to the internet. Can they still function? What doesn't work? What gets cached at your app server? How much data is transferred when the line returns?
      How much actual resilience does the business need vs what they can sustain, and what's the risk? Has anyone answered these questions before?

      The diagram is a simplified. It's only internal company traffic that goes over the VPN in the drawing. The data centers also serves other clients that are not connected over VPN. That actually their primary job - they are serving customers, not just internal workloads.

      When it comes to resilience and risk, it's the data centers that have to be up and running. So they have redundant everything. The rest is just ordinary SMB stuff.

      PS. Also in the data center we are doing HA in the application layer and not the hypervisor layer. So having two DNS servers made sense to me since that will be natural HA in the application layer.

    • 1

      Does intra-VM traffic leave the host?

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion
      24
      0 Votes
      24 Posts
      1k Views
      scottalanmillerS

      @Pete-S said in Does intra-VM traffic leave the host?:

      @scottalanmiller said in Does intra-VM traffic leave the host?:

      What's the use case here? Maybe there is another approach that would be effective?

      Mostly isolate and allow some well know traffic on appliance type VMs and VMs that we don't admin - without having to put each workload in it's own subnet.

      Hmmm... I see why you might want it.

    • 1

      Virtual Desktops / Workspaces / Multiple Desktops

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion
      17
      2 Votes
      17 Posts
      461 Views
      jmooreJ

      I don't really use them. I have 3 monitors though. they have been around forever it seems but limited use for me. I do it occasionally but not really out of necessity.

    • 1

      Should I be concerned over info in public DNS records?

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion subdomain dns dynamicdns cybersecurity
      2
      0 Votes
      2 Posts
      632 Views
      scottalanmillerS

      I find it to not be of concern. I would never have it happen, because it's a bizarre and problematic way to handle internal DNS. But anyone who can exploit private IP mapping can figure it out without DNS in the first place. So I see no reason to want to hide it.

    • 1

      Zoho spam settings?

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion
      5
      0 Votes
      5 Posts
      176 Views
      scottalanmillerS

      @Pete-S said in Zoho spam settings?:

      Thanks Scott. That makes sense.

      We're using imap clients so maybe that will exacerbate the problem since it will probably not learn what is spam and what isn't.

      Oh yeah. We don't use IMAP so the training is quick and direct.

    • 1

      Can Cloudflare handle country-code TLDs?

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion
      8
      0 Votes
      8 Posts
      482 Views
      scottalanmillerS

      @Pete-S said in Can Cloudflare handle country-code TLDs?:

      Can Cloudflare be a registrar for country-code TLDs such as it, eu, de, uk?

      If it can, it can't do all. We have ones like .co and .it and they cannot be handled.

    • 1

      How to backup emails on zoho?

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion zoho email backup
      6
      0 Votes
      6 Posts
      775 Views
      D

      What about archiving instead of backup? MailStore is good

    • 1

      What subdomain for web conference/meetings?

      Watching Ignoring Scheduled Pinned Locked Moved Solved IT Discussion meeting webex skype jitsi subdomain
      7
      1 Votes
      7 Posts
      907 Views
      EddieJenningsE

      @Pete-S said in What subdomain for web conference/meetings?:

      Thanks!

      meet.example.com looks more generic so I'll use that.

      I agree. Seems potentially less confusing for users.

    • 1

      Coronavirus: SANS releases training material and guidelines for kids and remote workers.

      Watching Ignoring Scheduled Pinned Locked Moved News cybersecurity infosec sans
      1
      0 Votes
      1 Posts
      399 Views
      No one has replied
    • 1

      Distro for school work?

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion linux desktop ubuntu
      17
      0 Votes
      17 Posts
      2k Views
      scottalanmillerS

      @JaredBusch said in Distro for school work?:

      @Pete-S said in Distro for school work?:

      Installed minecraft as well and it was really easy.

      Just click on the link to the deb package and you're done. Apt package manager will pull in java and whatever else that is needed.
      https://launcher.mojang.com/download/Minecraft.deb

      Webcam works, tested it with cheese, which is installed by default.

      All in all a smooth experience and mission accomplished.

      If Roblox worked on Linux I could switch my kids. Those are the only two PC games they play at the moment.

      Same

    • 1

      Virtual team ideas?

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion road warrior virtual team
      9
      1 Votes
      9 Posts
      642 Views
      IRJI

      @DustinB3403 said in Virtual team ideas?:

      Time sensitivity is important, people have a hard time showing up on time for a meeting physically. Making people wait with a headset on is just additional irritation that they won't take well.

      I personally always show up early 1-5 minutes for a meeting. If I had to wait an additional 15 I'd be using collage rules and counting my attendance as there even if the host isn't.

      I think putting a headset on is easier than going to room a people honestly.

    • 1

      RDP to RDP to RDP?

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion
      20
      0 Votes
      20 Posts
      922 Views
      1

      @stacksofplates said in RDP to RDP to RDP?:

      @Pete-S said in RDP to RDP to RDP?:

      @Obsolesce said in RDP to RDP to RDP?:

      @Pete-S said in RDP to RDP to RDP?:

      Purdue Model

      Except that model is basically dead...

      https://dale-peterson.com/2019/02/11/is-the-purdue-model-dead/

      No, not at all. You have to listen to the whole thing if you are going to draw any conclusions. Can't just google and use the headline 🙂

      It really is. It’s overly complex and has much less return on investment and security than something like the zero trust model.

      I'm not an ICS infosec expert. I just know what enterprises that have big plants in the oil & gas, pulp & paper, chemical industry have and what they have is what I said they have. And if I look at Homeland Security, NIST etc what they have as best practice is what the customers are doing. Will it change in the future? Sure, everything does.

    • 1

      Questions on Dell XPS 13 2018 year model

      Watching Ignoring Scheduled Pinned Locked Moved Solved IT Discussion
      11
      0 Votes
      11 Posts
      415 Views
      ObsolesceO

      I use this 61 watt apple charger for all my USB-C charging needs.

      It even works for my P1, but only slow charges that, but as you can see, USC-C dishes out high voltage and at 3 amps, as well as lower voltage for phones.

      20200317_073732.jpg

    • 1

      Skype & WebRTC?

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion skype for business skype webrtc
      5
      1 Votes
      5 Posts
      501 Views
      scottalanmillerS

      https://venturebeat.com/2016/07/13/skype-announces-new-webrtc-alpha-version-for-linux-chromebook-users-can-now-make-voice-calls/

      Did they kill it off, maybe?

    • 1

      sftp without ssh shell access?

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion ssh sftp
      6
      0 Votes
      6 Posts
      796 Views
      dbeatoD

      @Pete-S said in sftp without ssh shell access?:

      Thanks guys.

      To summarize the link above, it's these lines in sshd_config that does the magic.

      Match User sftpuser ForceCommand internal-sftp <snip>

      The first line will tell sshd what user(s) the rest of the settings apply to.
      The second line tells it to go straight into sftp mode. So this will only apply to the users that match the rule above.

      Just make sure to test SSH after you do the changes ok a new session otherwise you might just have broken SSH access.

    • 1

      Opinions on POS/label printers?

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion
      13
      1 Votes
      13 Posts
      545 Views
      DashrenderD

      @Pete-S said in Opinions on POS/label printers?:

      @Dashrender said in Opinions on POS/label printers?:

      @Pete-S said in Opinions on POS/label printers?:

      @scottalanmiller said in Opinions on POS/label printers?:

      Any reason not to look Dymo? We like them a lot.

      Does Dymo make standard thermal transfer printers? I thought they only made printers that would print on their own media.

      What does this mean? I have Dymos all over, we buy non Dymo branded labels from Amazon and they work fine. Is there something special about that type of label though?

      What I meant was that Dymo makes printers that takes Dymo labels. Sure other might make compatible labels but that is not what Dymo had in mind. Dymo sells their printers because they want you to buy their labels (which is where they make money).

      Zebra and others on the other hand makes generic printers that take standard size media - just like an office printer takes "letter" size paper.

      OK I getcha... like Keurig tried to pull with scanning a barcode on coffee pods - total fail! People will do damned near anything to override your lock-in when possible.

    • 1

      Installing XCP-ng using a Windows PC

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion xcp-ng xencenter xenserver
      7
      3 Votes
      7 Posts
      6k Views
      dbeatoD

      Also another thing is that XCP-ng it is finally able to support UEFI boot which was nice.

    • 1

      Continuous asynch file replication in linux?

      Watching Ignoring Scheduled Pinned Locked Moved IT Business
      18
      1 Votes
      18 Posts
      2k Views
      D

      @scottalanmiller
      Thanks for the clarification

    • 1

      How does name resolution work in AD?

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion windows dns ad
      15
      0 Votes
      15 Posts
      2k Views
      DashrenderD

      @Pete-S said in How does name resolution work in AD?:

      @Dashrender said in How does name resolution work in AD?:

      @scottalanmiller said in How does name resolution work in AD?:

      @Pete-S said in How does name resolution work in AD?:

      I was wondering how it works because we see a problem where a couple of Win 10 clients can resolve all the internal Windows servers names, but not the statically assigned names of linux servers.

      I thought if the name resolution works over different mechanisms and uses different ports it could be an firewall or L3 switch somewhere that has been misconfigured.

      This is common in situations where Linux is not given an opportunity to auto-update the DNS entries, no one makes them manually, and they are not joined to AD.

      Exactly - have you or anyone else added these servers to AD's DNS?

      They have been added manually. The name of the service is also not the name as the server. So if a webserver is abc001.company.com the name in the DNS that will send you to that server might be logistics.company.com.

      if you're being sent to logistics, that's the entry that must be in DNS.. you can have as many entries as are needed for a single server.
      each name is it's own entry.

    • 1
    • 2
    • 5
    • 6
    • 7
    • 8
    • 9
    • 13
    • 14
    • 7 / 14